CWE-362

Medium likelihood

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Parent: CWE-662 - Improper Synchronization

The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently.

2,391 vulnerabilities with CWE-362
CVE-2024-45300 HIGH
alf < 2.0-m5 - Race Condition in Promo Code Limit Enforcement
CVSS 7.5
CVE-2024-7627 HIGH
Bit File Manager 6.0-6.5.5 - Unauthenticated Remote Code Execution via Temporary File Race Condition
CVSS 8.1
CVE-2024-44954 MEDIUM
Linux Kernel - Race Condition in ALSA Line6 MIDI Buffer Access
CVSS 4.7
CVE-2024-7885 HIGH
Undertow < 2.2.36.Final - Information Leak via ProxyProtocolReadListener StringBuilder Reuse
CVSS 7.5
CVE-2024-43866 MEDIUM
Linux Kernel Race Condition in mlx5 Health Work Queue Drain
CVSS 4.7
CVE-2024-42300 MEDIUM
Linux Kernel 6.10-6.10.2 - Race Condition in z_erofs_get_gbuf
CVSS 4.7
CVE-2024-34731 HIGH
Android - Local Privilege Escalation via Race Condition in TranscodingResourcePolicy
CVSS 7.0
CVE-2024-42488 MEDIUM
Cilium <1.14.14-1.15.8 - Privilege Escalation
CVSS 6.8
CVE-2024-27267 MEDIUM
IBM SDK Java Technology Edition <8.0.8.26 - DoS
CVSS 5.9
CVE-2024-38191 HIGH
Kernel Streaming Service Driver - Privilege Escalation
CVSS 7.8
CVE-2024-38137 HIGH
Windows Resource Manager PSM Service Extension - Privilege Escalation
CVSS 7.0
CVE-2024-38136 HIGH
Windows Resource Manager PSM Service Extension - Privilege Escalation
CVSS 7.0
CVE-2024-7589 HIGH
FreeBSD < 13.0 - Unauthenticated Remote Code Execution via Signal Handler Race Condition
CVSS 8.1
CVE-2024-6996 LOW
Google Chrome < 127.0.6533.72 - UI Spoofing via Race Condition in Frames
CVSS 3.1
CVE-2024-40815 HIGH
macOS Ventura <13.6.8 - Info Disclosure
CVSS 7.5
CVE-2024-27823 MEDIUM
macOS Sonoma <14.5 - Info Disclosure
CVSS 5.9
CVE-2024-41020 MEDIUM
Linux Kernel 2.6.14-6.10.1 - Race Condition in File Lock Handling
CVSS 4.7
CVE-2024-6778 HIGH
Google Chrome <126.0.6478.182 - RCE
CVSS 7.5
CVE-2024-41005 MEDIUM
Linux Kernel - Race Condition in netpoll_owner_active
CVSS 4.7
CVE-2024-40976 MEDIUM
Linux Kernel 5.2-5.10.220 5.11-5.15.161 5.16-6.1.95 6.2-6.6.35 6.7-6.9.6 - Race Condition in DRM Lima Timeout Handler
CVSS 5.5
CVE-2024-40953 MEDIUM
Linux Kernel 2.6.39-6.9.6 - Race Condition in KVM vCPU Boost Handling
CVSS 4.7
CVE-2024-40943 MEDIUM
Linux Kernel - Race Condition in OCFS2 Hole Punching and AIO+DIO Operations
CVSS 4.7
CVE-2024-39508 MEDIUM
Linux Kernel 5.1-6.6.34, 6.7-6.9.5, 6.10 - Race Condition in io_uring/io-wq Worker Flags
CVSS 4.7
CVE-2024-39503 HIGH
Linux Kernel 5.4.269-5.4.278 - Use-After-Free in Netfilter ipset list:set Type
CVSS 7.0
CVE-2024-39500 MEDIUM
Linux Kernel 5.13-5.15.161, 5.16-6.1.94, 6.2-6.6.34, 6.7-6.9.5 - Use-After-Free in sock_map_close
CVSS 4.7
Details
Vulnerabilities 2,391
Exploit Likelihood Medium